5.8
CVSSv2

CVE-2010-3400

Published: 15/09/2010 Updated: 19/09/2017
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

The js_InitRandom function in the JavaScript implementation in Mozilla Firefox 3.5.x prior to 3.5.10 and 3.6.x prior to 3.6.4, and SeaMonkey prior to 2.0.5, uses the current time for seeding of a random number generator, which makes it easier for remote malicious users to guess the seed value via a brute-force attack, a different vulnerability than CVE-2008-5913.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 3.5

mozilla firefox 3.5.1

mozilla firefox 3.5.8

mozilla firefox 3.5.9

mozilla firefox 3.5.4

mozilla firefox 3.5.5

mozilla firefox 3.5.2

mozilla firefox 3.5.3

mozilla firefox 3.5.6

mozilla firefox 3.5.7

mozilla firefox 3.6.2

mozilla firefox 3.6.3

mozilla firefox 3.6

mozilla seamonkey 2.0.3

mozilla seamonkey 2.0.2

mozilla seamonkey 2.0

mozilla seamonkey 1.0.6

mozilla seamonkey 1.0.7

mozilla seamonkey 1.1.10

mozilla seamonkey 1.1.11

mozilla seamonkey 1.1.3

mozilla seamonkey 1.1.4

mozilla seamonkey 1.1

mozilla seamonkey 1.0.2

mozilla seamonkey 1.0.3

mozilla seamonkey 1.0

mozilla seamonkey 1.1.14

mozilla seamonkey 1.1.15

mozilla seamonkey 1.1.7

mozilla seamonkey 1.1.8

mozilla seamonkey 2.0.1

mozilla seamonkey 1.0.1

mozilla seamonkey 1.0.8

mozilla seamonkey 1.0.9

mozilla seamonkey 1.1.12

mozilla seamonkey 1.1.13

mozilla seamonkey 1.1.5

mozilla seamonkey 1.1.6

mozilla seamonkey

mozilla seamonkey 1.0.4

mozilla seamonkey 1.0.5

mozilla seamonkey 1.1.1

mozilla seamonkey 1.1.16

mozilla seamonkey 1.1.17

mozilla seamonkey 1.1.2

mozilla seamonkey 1.1.9